Extortioners learned to deactivate EDR solutions via the vulnerable driver of third-party Windows-utility Process Explorer

Show original
According to the last report of Sophos Group plc, malefactors even more often use recently the new hacker tool which has received the name "AuKill". The tool is used for shutdown of protective EDR systems on computers of victims for the subsequent expansion of bekdor and programs extortioners in BYOVD attacks...
Analysis
×
Microsoft
Main activity:Communication and IT
152
Sophos Group plc
Organizations